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Many existing access controls use node filtering or querying rewriting techniques. 
These techniques require rather time-consuming processes such as parsing, labeling, 
pruning and/or rewriting queries into safe ones each time a user requests a query 
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Data Grids have been adopted as the next generation platform by many scientific 
communities that need to share, access, transport, process, and manage large data 
collections distributed worldwide. They combine high-end computing technologies 
with high-performance ... 
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Understanding distributed applications is a tedious and difficult task. Visualizations 
based on process-time diagrams are often used to obtain a better understanding of 
the execution of the application. The visualization tool we use is Poet, an event ... 
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The term information portals refers to Web sites that serve as main providers of 
focused information, gathered from distributed data sources. Gathering and 
disseminating information through information portals introduce new security 
challenges. ... 
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In this article, we present a comprehensive approach for privacy preserving access 
control based on the notion of purpose. In our model, purpose information associated 
with a given data element specifies the intended use of the data element. A key 
feature ... 
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The rapid increase of sensitive data and the growing number of government 
regulations that require longterm data retention and protection have forced 
enterprises to pay serious attention to storage security. In this paper, we discuss 
important security ... 

Keywords: authorization, confidentiality, integrity, intrusion detection, privacy 
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Although several access control policies can be devised for controlling access to 
information, all existing authorization models, and the corresponding enforcement 
mechanisms, are based on a specific policy (usually the closed policy). As a 
consequence, ... 

Keywords: access control policy, authorization, logic programming 



9 Des g ^ ibuted access control processor for network services on the 



Proceedings of the 2002 ACM workshop on XML security 



Additional Information: full citation , abstract , references , cited by., 
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The service oriented architecture (SOA) is gaining more momentum with the advent 
of network services on the Web. A programmable and machine accessible Web is the 
vision of many, and might represent a step towards the semantic Web. However, 
security is ... 

Keywords: Web services, XML, access control, security 
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Extensible systems, such as Java or the SPIN extensible operating system, allow for 
units of code, or extensions, to be added to a running system in almost arbitrary 
fashion. Extensions closely interact through low-latency but type-safe interfaces to ... 

Keywords: Java, SPIN, access check, auditing, extensible systems, policy-neutral 
enforcement, protection domain, protection domain transfer, security policy 
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We present a new approach to building secure systems. In our approach, which we 
call Model Driven Security, designers specify system models along with their security 
requirements and use tools to automatically generate system architectures from the 
models, ... 

Keywords: Model Driven Architecture, Object Constraint Language, Role-Based 
Access Control, Unified Modeling Language, metamodeling, security engineering 
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BEA recently introduced a new middleware product called the Aqua-Logic Data 
Services Platform (ALDSP). The purpose of ALDSP is to make it easy to design, 
develop, deploy, and maintain a data services layer in the world of service-oriented 
architecture ... 
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Web-based applications greatly increase information availability and ease of access, 
which is optimal for public information. The distribution and sharing of information 
via the Web that must be accessed in a selective way, such as electronic 
commerce ... 

Keyw ords: Access control, World Wide Web, XML documents, authorizations 
specification and enforcement 
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Identity Federation technologies have enabled users to leverage their relationships 
with an Identity Provider (IdP) into a Service Provider's (SP) domain. They allow user- 
initiated and IdP-controlled sharing of authentication information, attributes ... 

Keywords: SAML, digital identity, identity federation, liberty alliance, policy, privacy 
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The Secure Virtual Enclaves (SVE) collaboration infrastructure allows multiple 
organizations to share their distributed application objects, while respecting 
organizational autonomy over local resources. The infrastructure is transparent to 
applications, ... 

Keywords: Access control, coalition, collaborative system, group communication, 
middleware, security policy 
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XML (extensible Markup Language) has emerged as a prevalent standard for 
document representation and exchange on the Web. It is often the case that XML 
documents contain information of different sensitivity degrees that must be 
selectively shared ... 
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As privacy becomes a major concern for both consumers and enterprises, many 
research efforts have been devoted to the development of privacy protecting 
technology. We recently proposed a privacy preserving access control model for 
relational databases, where ... 

Keywords: access control, management, privacy, private data, purpose, role 
attributes 
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Context-aware computing exposes a unique tension in how information about human 
context is modeled and used. On the one hand, approaches that use loosely 
structured information have been shown to be useful in situations where humans are 
the final consumers ... 

Keywords: Collaboration, context-aware computing, coordination, data 
representations 
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We present a security architecture that enables system and application a ccess 
control requirements to be enforced on applications composed from downloaded 
executable content. Downloaded executable content consists of messages 
downloaded from remote ... 

Keywords: access control models, authentication, autorization machanisms, 
collaborative systems, role-based access control 
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Traditionally, access control has been studied in the areas of operating systems and 
database management systems. With the advent of multiuser interfaces, there is a 
need to provide access control in the user interface. We have developed a general 
framework ... 

Keywords: access control, collaboration, computer-supported cooperative work, 
groupware, privacy, security, structure editors, user interface management systems 
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